会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明专利
    • Application evaluation device and program
    • 应用评估设备和程序
    • JP2012221216A
    • 2012-11-12
    • JP2011086302
    • 2011-04-08
    • Kddi CorpKddi株式会社
    • ISOHARA TAKAMASATAKEMORI KEISUKEKUBOTA AYUMI
    • G06F21/22G06F9/44G06Q50/10H04L9/32
    • PROBLEM TO BE SOLVED: To evaluate the safety of an application without depending on conditions under which a threat is actualized.SOLUTION: A communication partner list storage part 4 is configured to store first communication partner information showing an already known communication partner. An authority list storage part 7 is configured to store first authority information showing known authority. An application storage part 1 is configured to store an application file including the execution code of an application to be evaluated and second authority information showing authority to be used by the application to be evaluated. A decompile part 2 is configured to decompile the execution code, and to obtain a source code. A communication partner extraction part 3 is configured to extract second communication partner information showing the communication partner from the source code. A list comparison part 5 is configured to compare the first communication partner information with the second communication partner information. An authority comparison part 8 is configured to compare the first authority information with the second authority information. A safety evaluation part 9 is configured to evaluate the safety of the application to be evaluated on the basis of the result of comparison.
    • 要解决的问题:评估应用程序的安全性,而不依赖于实现威胁的条件。 解决方案:通信伙伴列表存储部分4被配置为存储示出已知通信伙伴的第一通信伙伴信息。 权限列表存储部7被配置为存储显示已知权限的第一权限信息。 应用存储部分1被配置为存储包括要评估的应用的执行代码的应用文件和表示要被评估的应用使用的权限的第二授权信息。 反编译部分2被配置为反编译执行代码并获得源代码。 通信伙伴提取部分3被配置为从源代码中提取示出通信伙伴的第二通信伙伴信息。 列表比较部分5被配置为将第一通信伙伴信息与第二通信伙伴信息进行比较。 权限比较部分8被配置为将第一权限信息与第二权限信息进行比较。 安全性评价部9被配置为基于比较结果来评估要评估的应用的安全性。 版权所有(C)2013,JPO&INPIT
    • 2. 发明专利
    • Alteration detection method and information appliance
    • 变更检测方法和信息装置
    • JP2012128757A
    • 2012-07-05
    • JP2010281169
    • 2010-12-17
    • Kddi CorpKddi株式会社
    • NISHIMURA KOSUKETAKEMORI KEISUKE
    • G06F21/24G09C1/00H04L9/32
    • PROBLEM TO BE SOLVED: To detect any alteration of contents of questionnaire entries.SOLUTION: A customer is encouraged to enter answers in a questionnaire displayed on a display unit 12 with the use of a touch panel 14. The portable information device 10 computes a hash value on the basis of the entry content and the questionnaire. The URL of a security server 62 and the hash value are transmitted in graphic code to a mobile phone 40, which uploads the hash value to the server 62. The server 62 generates a security token that contains the hash value. The portable information device 10 uploads the entry content to a data server 34. When referring to the entry content, the portable information device 10 recomputes the hash value on the basis of the entry content and the questionnaire. The hash value at the time of the entry and the recomputed hash value are checked against each other by the mobile phone 40 or the security server 62.
    • 要解决的问题:检测问卷内容的变更。

      解决方案:鼓励客户使用触摸面板14在显示单元12上显示的问卷中输入答案。便携式信息设备10基于条目内容和调查问卷来计算哈希值。 安全服务器62的URL和散列值以图形代码发送到移动电话40,移动电话40将哈希值上传到服务器62.服务器62生成包含哈希值的安全令牌。 便携式信息装置10将条目内容上传到数据服务器34.当参照条目内容时,便携式信息装置10基于条目内容和问卷重新计算散列值。 通过移动电话40或安全服务器62检查输入时的哈希值和重新计算的散列值。(C)2012,JPO&INPIT

    • 3. 发明专利
    • Application characteristic analysis device and program
    • 应用特征分析设备和程序
    • JP2012083909A
    • 2012-04-26
    • JP2010228732
    • 2010-10-08
    • Kddi CorpKddi株式会社
    • TAKEMORI KEISUKEISOHARA TAKAMASAMIYAKE MASARUTAKANO TOMOAKI
    • G06F21/22G06F11/34
    • PROBLEM TO BE SOLVED: To provide an information application characteristic analysis device and program by which representative information relevant to behaviors of a malignant application can be obtained.SOLUTION: A storage unit 20 stores: a plurality of patterns relevant to behaviors of a malignant application; representative characteristic information showing representative characteristics of the behaviors of the malignant application; and a numerical value showing a degree of risk of the malignant application. A pattern comparison unit 25 compares pieces of information which are recorded in each of an application log, a kernel log, and a communication log with the plurality of patterns. A representative characteristic extraction unit 26 extracts combination of the representative characteristic information and the numerical values associated with the patterns matched with the pieces of information recorded in each log. A selection unit 27 selects, when a plurality of kinds of combinations are extracted, any combination based on a result obtained by comparing the numerical values of the plurality of kinds of extracted combinations.
    • 要解决的问题:提供可以获得与恶性应用的行为有关的代表性信息的信息应用特征分析装置和程序。 解决方案:存储单元20存储与恶性应用的行为相关的多种模式; 显示恶性应用行为的代表性特征的代表性特征信息; 以及显示恶性应用风险程度的数值。 模式比较单元25将记录在每个应用程序日志,内核日志和通信日志中的信息与多个模式进行比较。 代表特征提取单元26提取代表性特征信息和与与每个日志中记录的信息匹配的模式相关联的数值的组合。 当提取多种组合时,选择单元27基于通过比较多种提取组合的数值获得的结果来选择任何组合。 版权所有(C)2012,JPO&INPIT
    • 4. 发明专利
    • Application management system
    • 应用管理系统
    • JP2012053836A
    • 2012-03-15
    • JP2010197862
    • 2010-09-03
    • Kddi CorpKddi株式会社
    • TAKEMORI KEISUKEMATSUI TOSHIKINISHIKAWA MAKOTOIKENO JUNICHIYASUI KOHEIEGUCHI KAZUYUKI
    • G06F9/445G06F21/22
    • PROBLEM TO BE SOLVED: To provide an application management system for installing an application which is necessary for each terminal equipment.SOLUTION: A center station 1 transmits application information showing an application necessary for each terminal by communicating with a terminal 2, and the terminal 2 receives request application information showing the application whose installation is requested, and transmits the program of the application shown by the request application information. The terminal 2 receives the application information by communicating with the center station 1, and selects the application whose installation is requested based on the information of the installed application and the received application information, and generates request application information. The terminal 2 transmits the request application information by communicating with the center station 1, and receives the program of the application, and installs the received program of the application.
    • 要解决的问题:提供用于安装每个终端设备所必需的应用的应用管理系统。 解决方案:中心站1通过与终端2进行通信来发送示出每个终端所需的应用的应用信息,并且终端2接收到表示请求安装的应用的请求应用信息,并发送所示应用程序 通过请求应用程序信息。 终端2通过与中心站1通信来接收应用信息,并根据所安装的应用信息和接收到的应用信息选择请求安装的应用,生成请求应用信息。 终端2通过与中心站1通信来发送请求应用信息,并接收应用程序,并安装接收的应用程序。 版权所有(C)2012,JPO&INPIT
    • 6. 发明专利
    • Information processing apparatus, program, and recording medium
    • 信息处理设备,程序和记录介质
    • JP2010092236A
    • 2010-04-22
    • JP2008261027
    • 2008-10-07
    • Kddi CorpKddi株式会社
    • TAKEMORI KEISUKEISOHARA TAKAMASAMIYAKE MASARU
    • G06F21/20G06F21/22
    • PROBLEM TO BE SOLVED: To provide an information processing apparatus, a program and a recording medium for precisely extracting communication results related with a device contaminated with bot. SOLUTION: A communication information storage unit 11 store the communication results related with communication performed on a network. A feature value storage unit 15 stores the feature value related with a plurality of states which appear in communication performed by the device contaminated with bot preliminarily calculated based on the communication results of the device whose being contaminated with bot is already known for every status. A counter 13 counts the number of appearance of the plurality of statuses for every status and IP address. A feature value calculation unit 14 calculates the feature value for every status and IP address based on the number of appearance. A feature value comparison unit 16 compares the feature value calculated by a feature value calculation unit 14 with the feature value stored in the feature value storage unit 15 for every status. A decision unit 17 selects the IP address based on the results of comparison. A communication information extraction unit 18 extracts the communication results including the selected IP address. COPYRIGHT: (C)2010,JPO&INPIT
    • 要解决的问题:提供一种信息处理装置,程序和记录介质,用于精确地提取与被bot受污染的装置相关的通信结果。 解决方案:通信信息存储单元11存储与在网络上执行的通信相关的通信结果。 特征值存储单元15存储与基于被bot被污染的装置的通信结果预先计算的由bot所污染的装置执行的通信中出现的多个状态相关的特征值,对于每个状态已经是已知的。 计数器13对每个状态和IP地址的多个状态的出现次数进行计数。 特征值计算单元14基于外观数量来计算每个状态和IP地址的特征值。 特征量比较单元16将由特征量计算单元14计算的特征值与存储在特征值存储单元15中的每个状态的特征值进行比较。 判定单元17基于比较结果来选择IP地址。 通信信息提取单元18提取包括所选择的IP地址的通信结果。 版权所有(C)2010,JPO&INPIT
    • 7. 发明专利
    • Fraudulence detection device, program, and recording medium
    • 仿真检测装置,程序和记录介质
    • JP2009087208A
    • 2009-04-23
    • JP2007258619
    • 2007-10-02
    • Kddi CorpKddi株式会社
    • TAKEMORI KEISUKEMIYAKE MASARUBABA AKIRA
    • G06F13/00G06F21/20G06F21/22H04L12/56
    • PROBLEM TO BE SOLVED: To provide a fraudulence detection device, program, and a recording medium capable of detecting fraudulent communication by computer virus. SOLUTION: For each block constituting a first IP address and a second IP address indicating the relation of signal transmission and reception concerning an fraudulent communication by computer virus, an information entropy value calculation part 103 calculates the first value to represent the degree of dispersion of the address value having appeared. Another information entropy value calculation part 107 calculates the second value to represent the degree of dispersion of the address value having appeared for each block constituting a third IP address and a fourth IP address indicating the relation of signal transmission and reception concerning the communication of the object to be analyzed. An fraudulence detection part 109 determines the similarity of illegal communication and the communication of the object to be analyzed on the basis of the first and second values of each block, and if the similarity is high, determines that an fraudulence is committed. COPYRIGHT: (C)2009,JPO&INPIT
    • 要解决的问题:提供能够通过计算机病毒检测欺诈性通信的欺诈检测装置,程序和记录介质。 解决方案:信息熵值计算部103对于构成第一IP地址的每个块和表示计算机病毒的欺诈性通信的信号发送和接收的关系的第二IP地址,计算第一值以表示计算机病毒的程度 已出现地址值的色散。 另一信息熵值计算部107计算第二值,以表示对于构成第三IP地址的每个块出现的地址值的分散度和表示与对象的通信有关的信号发送和接收的关系的第四IP地址 待分析。 欺诈检测部109根据每个块的第一和第二值确定非法通信的相似性和要分析的对象的通信,并且如果相似度高,则确定提供欺诈。 版权所有(C)2009,JPO&INPIT
    • 10. 发明专利
    • Terminal device, integrity verification system, and program
    • 终端设备,完整性验证系统和程序
    • JP2014098951A
    • 2014-05-29
    • JP2012249108
    • 2012-11-13
    • Kddi CorpKddi株式会社
    • TAKEMORI KEISUKEKAWABATA HIDEAKIISOHARA TAKAMASAKUBOTA AYUMI
    • G06F21/57
    • PROBLEM TO BE SOLVED: To perform integrity verification of an OS at the time of a start of a terminal device and start the terminal device at high speed.SOLUTION: A service program 120 realizes a function of a service 140 provided by an OS. After measuring the service program 120 according to control by a kernel 142, a service measurement/start program 121 realizes a function of a service measurement/start unit 141 for starting a service. A kernel program 122 starts the service measurement/start unit 141 and realizes a function of the kernel 142 for controlling processing performed by the service measurement/start unit 141. After measuring the service measurement/start program 121 and the kernel program 122, a first boot loader program 123 realizes a function of a boot loader for starting the kernel 142. A service 140 transmits a measurement value to a server for verifying the integrity of the OS by comparing the measurement result with an expectation value.
    • 要解决的问题:在终端设备启动时执行OS的完整性验证并且高速启动终端设备。解决方案:服务程序120实现由OS提供的服务140的功能。 在根据内核142的控制测量服务程序120之后,服务测量/启动程序121实现用于启动服务的服务测量/启动单元141的功能。 内核程序122启动服务测量/启动单元141,并且实现用于控制由服务测量/启动单元141执行的处理的内核142的功能。在测量服务测量/启动程序121和内核程序122之后, 引导加载程序123实现用于启动内核142的引导加载程序的功能。服务140通过将测量结果与期望值进行比较来将测量值发送到服务器以验证OS的完整性。